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MEMORANDUM FOR: Chairman, Computer Security Subcommittee 

SUEJECT: User Authentication Device for Computer 

Terminals 


FROM: 

Staff, DCI Security Committee 


STAT 


1. I have reviewed the above subject and recommend 


the Computer 
as suggested 

Security Subcommittee move in the direction 
in the last paragraph of this memorandum. 

2. Considerable effort has gone into studying the 
application of various personnel identification or veri- 
fication devices for application to security problems. 
This activity was accomplished, and continues to some 
degree at the following facilities: 

a . 

Air Force/Mitre (ESD) at Hanscomb Field, 
Massachusetts under the Base Installation 
Security Study. (BISS) 

b. 

National Bureau of Standards focal point - 
Helen Wood. 

c . 

AEC/NRA - Sandia Corporation, Albuquerque, 
New Mexico 

d. 

CIA - (TRW Badge Machine) 

Local point - Office of Security 


3. The activity of the above first three facilities 
has been documented and reports are available. The type 
of devices studied are: 

(1) . voice identif icat ion/ veri f icat ion 

(2) . finger print identification/verification 

(3) . visual identification/verification 

(4) . badge identification/verification 

(5) . signature identification/verification 

(6) . password identif icat ion/verification 

(7) . other personal characteristics 

identif icat ion /veri f icat ion 
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The CIA activity, to the undersigned's 
resulted in documentation or reports, 
is attempting to keep current in the 
identif icat ion/ a uthenti cat ion /veri fie 


knowledge, has 
This activity, 
overall aspects 


not 

however 

of 


ation of personnel. 


y 


4. It was suggested at the last Subcommittee meeting 
that the R6jD Subcommittee of SECOM be tasked to explore the 
"user authentication device for terminals" area. The 
undersigned believes that a more definitive request should 
be presented to the RfjD Subcommittee, due to the past work 
by others in this area. This definitive request should be 
based on the desires of the members of Computer Security 
Subcommittee for a type of device with a description of 
the application and security controls expected. 


5. It is suggested that the Chair of the Computer 
Security Subcommittee create a working group to describe 
the security controls and type of devices acceptable to 
the IC for the R^D Subcommittee. 


STAT 


STAT 
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